Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:VERITAS:VERITAS-FILE-DUMP

Severity

Medium

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

Veritas File Dump

Release Date

2005/08/31

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: Veritas File Dump


This signature detects the exploitation of the File Dump vulnerability in the Veritas backup packages. This vulnerability allows information leakage, which could be used to assist other attacks.

Extended Description

Veritas Backup Exec for Windows Servers, Veritas Backup Exec for NetWare Servers, NetBackup for NetWare Media Server Option, and Remote Agents for Windows, Unix/Linux, and NetWare servers are prone to a vulnerability regarding the unauthorized downloading of arbitrary files. A remote attacker can exploit this vulnerability to download arbitrary files, aiding them in further attack. A Metasploit Framework exploit is available and there are reports of this vulnerability currently being exploited in the wild.

Affected Products

  • Veritas Software Backup Exec for NetWare Servers 9.0.4019
  • Veritas Software Backup Exec for NetWare Servers 9.0.4170
  • Veritas Software Backup Exec for NetWare Servers 9.0.4172
  • Veritas Software Backup Exec for NetWare Servers 9.0.4174
  • Veritas Software Backup Exec for NetWare Servers 9.0.4202
  • Veritas Software Backup Exec for NetWare Servers 9.1.1067 .2
  • Veritas Software Backup Exec for NetWare Servers 9.1.1067 .3
  • Veritas Software Backup Exec for NetWare Servers 9.1.1127 .1
  • Veritas Software Backup Exec for NetWare Servers 9.1.1151 .1
  • Veritas Software Backup Exec for NetWare Servers 9.1.1152
  • Veritas Software Backup Exec for NetWare Servers 9.1.1152 .4
  • Veritas Software Backup Exec for NetWare Servers 9.1.1154
  • Veritas Software Backup Exec for NetWare Servers 9.1.1156
  • Veritas Software Backup Exec for NetWare Servers 9.1.306
  • Veritas Software Backup Exec for NetWare Servers 9.1.307
  • Veritas Software Backup Exec for Windows Servers 10.0.0 rev. 5484
  • Veritas Software Backup Exec for Windows Servers 10.0.0 rev. 5484 SP1
  • Veritas Software Backup Exec for Windows Servers 10.0.0 rev. 5520
  • Veritas Software Backup Exec for Windows Servers 8.0.0
  • Veritas Software Backup Exec for Windows Servers 8.5.0
  • Veritas Software Backup Exec for Windows Servers 8.6.0
  • Veritas Software Backup Exec for Windows Servers 9.0.0
  • Veritas Software Backup Exec for Windows Servers 9.0.0 rev. 4367
  • Veritas Software Backup Exec for Windows Servers 9.0.0 rev. 4367 SP1
  • Veritas Software Backup Exec for Windows Servers 9.0.0 rev. 4454
  • Veritas Software Backup Exec for Windows Servers 9.0.0 rev. 4454 SP1
  • Veritas Software Backup Exec for Windows Servers 9.1.0
  • Veritas Software Backup Exec for Windows Servers 9.1.0 rev. 4691
  • Veritas Software Backup Exec for Windows Servers 9.1.0 rev. 4691 SP2
  • Veritas Software Backup Exec Remote Agent for NetWare Server
  • Veritas Software Backup Exec Remote Agent for Unix/Linux Server
  • Veritas Software Backup Exec Remote Agent for Windows Server
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP1
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP2
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP3
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP4
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP5
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP6
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP7
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 FP8
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP1
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP2
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP3
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP4
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP5
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP6
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP7
  • Veritas Software NetBackup for NetWare Media Servers 4.5.0 MP8
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0 MP1
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0 MP2
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0 MP3
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0 MP4
  • Veritas Software NetBackup for NetWare Media Servers 5.0.0 MP5
  • Veritas Software NetBackup for NetWare Media Servers 5.1.0
  • Veritas Software NetBackup for NetWare Media Servers 5.1.0 MP1
  • Veritas Software NetBackup for NetWare Media Servers 5.1.0 MP2
  • Veritas Software NetBackup for NetWare Media Servers 5.1.0 MP3

References

  • BugTraq: 14551
  • CVE: CVE-2005-2611
  • URL: http://www.frsirt.com/exploits/20050811.backupexec_dump.pm.php

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out